Medium
CVSS 5.0
Overview
fipsForum 2.6 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for _database/forumFips.mdb.
fipsForum 2.6 stores sensitive information under the web root with insufficient ...
fipsForum 2.6 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for _database/forumFips.mdb.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: